First published: Tue Jul 03 2018(Updated: )
An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.17.3, which does not properly validate secs_per_zone in a corrupted f2fs image, as demonstrated by a divide-by-zero error.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | <=4.17.3 | |
Debian Linux | =8.0 | |
debian/linux | 5.10.223-1 5.10.234-1 6.1.129-1 6.1.133-1 6.12.21-1 6.12.22-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-13100 has a medium severity rating due to its potential to cause a divide-by-zero error affecting system stability.
To fix CVE-2018-13100, upgrade to Linux kernel versions 5.10.223-1, 5.10.226-1, 6.1.119-1, 6.1.123-1, 6.12.10-1, or 6.12.11-1.
CVE-2018-13100 affects the Linux kernel versions up to and including 4.17.3.
Yes, Debian Linux 8.0 is affected by CVE-2018-13100 due to its use of an affected Linux kernel version.
Systems running the Linux kernel version 4.17.3 or earlier, including certain distributions like Debian Linux 8.0, are vulnerable to CVE-2018-13100.